apps-terxorio[.]wixstudio[.]com
“Official Trezor™ Suite App — Desktop & Web App for Hardware”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
This domain, apps-terxorio.wixstudio.com, is flagged as a credential harvesting phishing site targeting users through deceptive login interfaces. Analysis indicates the domain is designed to mimic legitimate authentication portals, tricking visitors into submitting sensitive credentials such as usernames, passwords, and potentially multi-factor authentication codes. The infrastructure is structured to closely resemble corporate or cloud-based login pages, increasing the likelihood of successful social engineering attacks against both individual and enterprise users. Infrastructure analysis reveals the domain currently resolves to IP address 34.144.206.118 and remains active as of the latest verification. VirusTotal detection metrics show 0 out of 95 security engines have flagged the domain, suggesting it has not yet been widely identified by automated scanning systems. The domain is hosted on a platform that allows rapid deployment of subdomains, which may facilitate quick rotation or replication of phishing pages. No historical blocklist entries or creation date metadata are currently available, indicating potential use of legitimate hosting services to evade initial detection. Users who have visited apps-terxorio.wixstudio.com or entered credentials on any page hosted under this domain should assume compromise of submitted information. Immediate actions include resetting passwords for any accounts accessed through the site, enabling multi-factor authentication where available, and monitoring associated accounts for unauthorized activity. System administrators are advised to block the domain and its resolving IP address at the network perimeter. Endpoint protection rules should be updated to include this indicator of compromise, and security teams should review logs for connections to 34.144.206.118 or related subdomains. If browser sessions were active during the visit, clearing cached data and revoking any saved credentials is recommended to prevent persistent access.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Registration: wixstudio.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 7 технологій із високою впевненістю
Аналіз VirusTotal
Аналіз конфігурації сайту
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога